Palladium and malware

2002-08-28 Thread Paul Crowley
imate attempts to understand and defeat their software? -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.ciphergoth.org/ - The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

Re: CCM Mode

2002-08-20 Thread Paul Crowley
cification of a good way of composing them. Some commentary by Rogaway can be found here: http://www.cs.ucdavis.edu/~rogaway/ocb/links.htm all of his technical commentary seems indisputable, though of course I would favour choosing less efficient modes over patent-encumbered modes. -- __ P

Re: Extracting uniform randomness from noisy source

2002-08-12 Thread Paul Crowley
concrete model. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.ciphergoth.org/ - The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

Re: Thanks, Lucky, for helping to kill gnutella

2002-08-11 Thread Paul Crowley
AARG!Anonymous <[EMAIL PROTECTED]> writes: > Be sure and send a note to the Gnutella people reminding them of all > you're doing for them, okay, Lucky? Do the Gnutella people share your feelings on this matter? I'd be surprised. -- __ Paul Crowley \/ o\ [EMAIL

Re: building a true RNG

2002-08-02 Thread Paul Crowley
doesn't compress. I don't know of any examples which compress and have collision resistance. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.ciphergoth.org/ - The Cryptography Mailing List Unsubscribe

Re: building a true RNG

2002-08-02 Thread Paul Crowley
Maybe you can do something with some sort of idea of "computable distributions" to overcome the specification problem David Wagner outlines? -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.ciphergoth.org/ - The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

Re: building a true RNG

2002-08-01 Thread Paul Crowley
f construction (i.e., 3 rounds of a Feistel cipher), with > ideal hash functions in each round, does this have the desired properties? > It might. This seems to define a block cipher with no key, which is collision free but not one-way. Am I misunderstanding what you're proposing? -

Re: building a true RNG (was: Quantum Computing ...)

2002-07-25 Thread Paul Crowley
transformation. There's no point as far as security is concerned, I agree - and usually people are talking about lossy compression, which can only do harm. The argument seems to be that compression followed by hashing will be faster than hashing alone, but that seems unikely to me. -- __

Re: building a true RNG

2002-07-24 Thread Paul Crowley
d be as fast as just feeding the signal straight into SHA-1. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] http://www.ciphergoth.org/ /\__/ BiCon 2002 UK bisexual gathering: http://www.2002.bicon.org.uk/ - The Cryptography Mailing L

Re: Montgomery Multiplication

2002-07-02 Thread Paul Crowley
te a guide to the explanation in Handbook of Applied Cryptography which you can find here: http://www.ciphergoth.org/writing/postings/news-992.txt -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] http://www.ciphergoth.org/ /\__/ BiCon 2002 UK bisexual gathering:

Re: Disk encryption standards (was: RE: Two ideas for random number g eneration]

2002-05-13 Thread Paul Crowley
te in > > the project. > > > > This work potentially has wide application, from hard disk storage > > to PDAs. There's some discussion of these issues in the paper presenting my (broken) block cipher Mercy, which was meant for this application: http://www.ci

Re: objectivity and factoring analysis

2002-04-20 Thread Paul Crowley
l.com&filter=0 His off-the-cuff estimate of a good new recommended key size was 2048 bits. It would be good to hear more from other integer factorisation experts. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] http://www.ciphergoth.org/ /\__/ BiCon 2002, discount before Apri

Re: Cringely Gives KnowNow Some Unbelievable Free Press... (fwd)

2002-02-27 Thread Paul Crowley
the attack can be mounted without the need to seize the secret keyring. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.ciphergoth.org/ - The Cryptography Mailing List Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

SPKI (WAS Re: Field slide attacks and how to avoid them.)

2001-09-20 Thread Paul Crowley
a "spki certs in xml syntax" doc? The "cache" link on that page carries it: http://xml.coverpages.org/draft-paajarvi-xml-spki-cert-00.txt I confess I love SPKI, and I would love to know why we're not in a sitation where it's in widespread use today. -- __ Pau

Re: NYC events and cell phones

2001-09-17 Thread Paul Crowley
k space and two weeks preprocessing is sufficient to break A5/1 in about two minutes. Some known plaintext is needed; I don't know whether anyone's measured how difficult it is to make guesses at knownn plaintext in a cellphone voice stream. -- __ Paul Crowley \/ o\ [EM

Re: Outreach Volunteers Needed - Content Control is a Dead End

2001-08-31 Thread Paul Crowley
stars, then?" I'm sorry, but I don't know that, either. http://www.counterpane.com/crypto-gram-0108.html -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.cluefactory.org.uk/paul/ "Conserv

Re: I'm looking for FSE2001 proceedings

2001-07-18 Thread Paul Crowley
; homepage. Two of the papers are on my web pages: Scott Fluhrer's on breaking my cipher Mercy, and Stefan Lucks and mine on breaking Leviathan: http://www.cluefactory.org.uk/paul/mercy/fluhrer-dc.html http://www.ciphergoth.org/leviathan -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http:/

Re: Starium (was Re: article: german secure phone)

2001-06-14 Thread Paul Crowley
the last four digits by trying about a hundred candidates for each in a birthday attack. -- __ Paul Crowley \/ o\ [EMAIL PROTECTED] /\__/ http://www.cluefactory.org.uk/paul/ "Conservation of angular momentum makes the world go around" - John Clark